Page MenuHomeFreeBSD

Fix broken STARTTLS when SharedMemoryKey is enabled
ClosedPublic

Authored by hrs on Feb 17 2020, 7:33 PM.
Tags
None
Referenced Files
Unknown Object (File)
Fri, Oct 17, 7:57 AM
Unknown Object (File)
Wed, Oct 15, 4:43 AM
Unknown Object (File)
Tue, Oct 14, 7:12 PM
Unknown Object (File)
Tue, Oct 14, 7:12 PM
Unknown Object (File)
Tue, Oct 14, 8:09 AM
Unknown Object (File)
Sun, Oct 12, 10:16 AM
Unknown Object (File)
Mon, Oct 6, 3:12 AM
Unknown Object (File)
Fri, Sep 19, 10:18 PM
Subscribers

Details

Summary

OpenSSL 1.1 API patch for sendmail has a bug which
prevents sm_RSA_generate_key() function from working.
This function is used to generate a temporary RSA key
for a shared memory region used for TLS processing.
Note that 12.0 and 12.1-RELEASE include this bug.

To trigger this bug, SM_CONF_SHM compile-time
option (enabled by default) and SharedMemoryKey
run-time option (not enabled by default) in a .cf file
are required. The latter corresponds to
confSHARED_MEMORY_KEY in a .mc file. See also Bug 242861.

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Not Applicable
Unit
Tests Not Applicable